From fb00cb3f8c8469cdbb66f735c9c940fe97e2ffde Mon Sep 17 00:00:00 2001 From: Mikolaj Izdebski Date: Wed, 5 Jun 2024 08:28:41 +0200 Subject: [PATCH] Koschei: Enable use of X-Forwarded-* headers for mod_auth_openidc --- roles/openshift-apps/koschei/templates/httpd-virthost.conf.j2 | 1 + 1 file changed, 1 insertion(+) diff --git a/roles/openshift-apps/koschei/templates/httpd-virthost.conf.j2 b/roles/openshift-apps/koschei/templates/httpd-virthost.conf.j2 index 143aec6125..49dd38374b 100644 --- a/roles/openshift-apps/koschei/templates/httpd-virthost.conf.j2 +++ b/roles/openshift-apps/koschei/templates/httpd-virthost.conf.j2 @@ -9,6 +9,7 @@ OIDCCryptoPassphrase "{{ koschei_oidc_crypto_secret }}" OIDCSSLValidateServer On OIDCResponseType "code" OIDCSessionType client-cookie +OIDCXForwardedHeaders X-Forwarded-Host X-Forwarded-Port X-Forwarded-Proto OIDCScope "openid profile"